Vulnerabilities > Microsoft > Lync Server > 2013

DATE CVE VULNERABILITY TITLE RISK
2022-07-12 CVE-2022-33633 Unspecified vulnerability in Microsoft Lync Server and Skype for Business
Skype for Business and Lync Remote Code Execution Vulnerability
network
low complexity
microsoft
7.2
2022-04-15 CVE-2022-26911 Unspecified vulnerability in Microsoft Lync Server and Skype for Business Server
Skype for Business Information Disclosure Vulnerability
network
low complexity
microsoft
6.5
2021-05-11 CVE-2021-26421 Unspecified vulnerability in Microsoft Lync Server and Skype for Business Server
Skype for Business and Lync Spoofing Vulnerability
network
high complexity
microsoft
6.5
2021-05-11 CVE-2021-26422 Unspecified vulnerability in Microsoft Lync Server and Skype for Business Server
Skype for Business and Lync Remote Code Execution Vulnerability
network
low complexity
microsoft
7.2
2021-02-25 CVE-2021-24099 Unspecified vulnerability in Microsoft Lync Server and Skype for Business Server
Skype for Business and Lync Denial of Service Vulnerability
network
low complexity
microsoft
6.5
2021-02-25 CVE-2021-24073 Unspecified vulnerability in Microsoft Lync Server and Skype for Business Server
Skype for Business and Lync Spoofing Vulnerability
network
high complexity
microsoft
6.5
2019-06-12 CVE-2019-1029 Unspecified vulnerability in Microsoft Lync Server 2010/2013
A denial of service vulnerability exists in Skype for Business, aka 'Skype for Business and Lync Server Denial of Service Vulnerability'.
network
microsoft
7.1
2019-04-09 CVE-2019-0798 Cross-site Scripting vulnerability in Microsoft Lync Server and Skype FOR Business Server
A spoofing vulnerability exists when a Lync Server or Skype for Business Server does not properly sanitize a specially crafted request, aka 'Skype for Business and Lync Spoofing Vulnerability'.
network
microsoft CWE-79
4.3
2015-09-09 CVE-2015-2536 Cross-site Scripting vulnerability in Microsoft Lync Server and Skype for Business Server
Cross-site scripting (XSS) vulnerability in Microsoft Lync Server 2013 and Skype for Business Server 2015 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Skype for Business Server and Lync Server XSS Elevation of Privilege Vulnerability."
network
microsoft CWE-79
4.3
2015-09-09 CVE-2015-2532 Cross-site Scripting vulnerability in Microsoft Lync Server 2013
Cross-site scripting (XSS) vulnerability in Microsoft Lync Server 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Lync Server XSS Information Disclosure Vulnerability."
network
microsoft CWE-79
4.3